US10171468B2ActiveUtilityA1

Selective processing of application permissions

Assignee: IBMPriority: Aug 23, 2016Filed: Aug 23, 2016Granted: Jan 1, 2019
Est. expiryAug 23, 2036(~10 yrs left)· nominal 20-yr term from priority
G06F 21/00H04L 63/10G06F 2221/2123G06F 21/53
45
PatentIndex Score
0
Cited by
11
References
17
Claims

Abstract

An application permissions processing system and method for processing application permission requests is provided. The method includes the steps of detecting that an application has been downloaded to a computing system, receiving one or more permission requests from the application for resources located on the computing system, determining that at least one of the one or more permission requests is a required permission of the application, prompting the user to decide the one or more permission requests, receiving a denial of the required permission from the user, in response to the prompting, and responding to the application by providing spoofed resources to the application to satisfy the required permission of the application.

Claims

exact text as granted — not AI-modified
The invention claimed is: 
     
       1. A method for processing application permission requests, the method comprising:
 detecting, by a processor of a computing system, that an application has been downloaded to the computing system; 
 establishing, by the processor, a data exchange between the application and a gateway interface of the computing system to prevent a data exchange between an operating system of the computing device and the application, by at least one of intercepting and overriding APIs of the application, in response to the application being downloaded to the computing system; 
 receiving, by the processor, one or more permission requests from the application for resources located on the computing system; 
 determining, by the processor, that at least one of the one or more permission requests is a required permission of the application; 
 prompting, by the processor, the user to decide the one or more permission requests; 
 receiving, by the processor, a denial of the required permission from the user, in response to the prompting; 
 responding, by the processor, to the application by providing spoofed resources to the application to satisfy the required permission of the application; 
 generating, by the processor, one or more templates of simulated spoofed resources over time based on a learning algorithm that analyzes historical responses of spoofed resources to required permissions; and 
 storing, by the processor, the one or more templates for automatically simulating spoofed resources to satisfy the required permissions of subsequent applications downloaded to the computing system. 
 
     
     
       2. The method of  claim 1 , wherein the resources of the computing system include at least one of user data, device hardware, and a combination thereof. 
     
     
       3. The method of  claim 1 , wherein one or more requests for resources includes a permission to access the resources. 
     
     
       4. The method of  claim 1 , wherein the spoofed resources are supplied by the user. 
     
     
       5. The method of  claim 1 , wherein the spoofed resources are automatically simulated and transmitted, by the processor. 
     
     
       6. The method of  claim 1 , wherein the spoofed resources are unrelated to the user. 
     
     
       7. The method of  claim 1 , wherein the application accepts the spoofed resources as genuine resources of the computing system. 
     
     
       8. A computer system, comprising:
 a processor; 
 a memory device coupled to the processor; and 
 a computer readable storage device coupled to the processor, wherein the story device contains program code executable by the processor via the memory device to implement a method for processing application permission requests, the method comprising:
 detecting, by a processor of a computing system, that an application has been downloaded to the computing system; 
 establishing, by the processor, a data exchange between the application and a gateway interface of the computing system to prevent a data exchange between an operating system of the computing device and the application, by at least one of intercepting and overriding APIs of the application, in response to the application being downloaded to the computing system; 
 receiving, by the processor, one or more permission requests from the application for resources located on the computing system; 
 determining, by the processor, that at least one of the one or more permission requests is a required permission of the application; 
 prompting, by the processor, the user to decide the one or more permission requests; 
 receiving, by the processor, a denial of the required permission from the user, in response to the prompting; 
 
 responding, by the processor, to the application by providing spoofed resources to the application to satisfy the required permission of the application; 
 generating, by the processor, one or more templates of simulated spoofed resources over time based on a learning algorithm that analyzes historical responses of spoofed resources to required permissions; and
 storing, by the processor, the one or more templates for automatically simulating spoofed resources to satisfy the required permissions of subsequent applications downloaded to the computing system. 
 
 
     
     
       9. The computing system of  claim 8 , wherein the resources of the computing system include at least one of user data, device hardware, and a combination thereof. 
     
     
       10. The computing system of  claim 8 , wherein the one or more requests for resources includes a permission to access the resources. 
     
     
       11. The computing system of  claim 8 , wherein the spoofed resources are supplied by the user. 
     
     
       12. The computing system of  claim 8 , wherein the s goofed resources are automatically simulated and transmitted, by the processor. 
     
     
       13. The computing system of  claim 8 , wherein the application accepts the spoofed resources as genuine resources of the computing system. 
     
     
       14. A computer program product, comprising a computer readable hardware storage device storing a computer readable program code, the computer readable program code comprising an algorithm that when executed by a computer processor of a computing system implements a method for processing application permission requests, comprising:
 detecting, by a processor of a computing system, that an application has been downloaded to the computing system; 
 establishing, by the processor, a data exchange between the application and a gateway interface of the computing system to prevent a data exchange between an operating system of the computing device and the application, by at least one of intercepting and overriding APIs of the application, in response to the application being downloaded to the computing system; 
 receiving, by the processor, one or more permission requests from the application for resources located on the computing system; 
 determining, by the processor, that at least one of the one or more permission requests is a required permission of the application; 
 prompting, by the processor, the user to decide the one or more permission requests; 
 receiving, by the processor, a denial of the required permission from the user, in response to the prompting; 
 responding, by the processor, to the application by providing spoofed resources to the application to satisfy the required permission of the application; 
 generating, by the processor, one or more templates of simulated spoofed resources over time based on a learning algorithm that analyzes historical responses of spoofed resources to required permissions; and 
 storing, by the processor, the one or more templates for automatically simulating spoofed resources to satisfy the required permissions of subsequent applications downloaded to the computing system. 
 
     
     
       15. The computer program product of  claim 14 , wherein the resources of the computing system include at least one of user data, device hardware, and a combination thereof. 
     
     
       16. The computer program product of  claim 14 , wherein the one or more requests for resources includes a permission to access the resources. 
     
     
       17. The computer program product of  claim 14 , wherein the application accepts the spoofed resources as genuine resources of the computing system.

Join the waitlist — get patent alerts

Track US10171468B2 — get alerts on status changes and closely related new filings.

We store only your email — no account needed. See our privacy policy.